Microsoft calls on IT admins to take extra steps to shield against Exchange vulnerabilities

>

Microsoft has addressed a number of Exchange Server flaws in its latest Patch (opens in new tab) Tuesday cumulative security update – however IT admins will also need to enable Extended Protection to fully mitigate some of them.

Extended Protection is a tool that enhances existing Windows Server authentication, and mitigates man-in-the-middle attacks, or authentication relays. The feature does so by using security information implemented through Channel-binding information, specified through a Channel Binding Token, primarily used for SSL connections.